Goose Attack Report

Users: 7

Target Host: http://trustify:8080/

goose v0.18.0

Plan overview

Action Started Stopped Elapsed Users
Increasing26-03-22 02:27:3226-03-22 02:27:3900:00:070 → 7
Maintaining26-03-22 02:27:3926-03-22 02:57:3900:30:007
Decreasing26-03-22 02:57:3926-03-22 02:58:0700:00:280 ← 7

Request Metrics

Method Name # Requests # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 45 (0) 0 226.98 (+42.78) 35 (0) 369 (-6) 0.03 (+0.00) 0.00 (+0.00)
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 45 (0) 0 190.18 (+21.31) 25 (-41) 309 (+13) 0.03 (+0.00) 0.00 (+0.00)
GET get_advisory_by_doc_id 45 (0) 0 19.20 (-4.64) 5 (+1) 100 (+18) 0.03 (+0.00) 0.00 (+0.00)
GET get_analysis_latest_cpe 45 (0) 0 42.29 (-15.80) 4 (+1) 106 (-66) 0.03 (+0.00) 0.00 (+0.00)
GET get_analysis_status 45 (0) 0 6.82 (-6.29) 1 (-1) 49 (-33) 0.03 (+0.00) 0.00 (+0.00)
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 45 (0) 0 237.56 (+17.64) 63 (+30) 402 (-3) 0.03 (+0.00) 0.00 (+0.00)
GET get_sbom[sha256:a3442b37…3040057f79c70669] 45 (0) 0 10056.29 (+1111.20) 496 (+168) 15894 (-3217) 0.03 (+0.00) 0.00 (+0.00)
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 45 (0) 0 17.13 (-4.36) 3 (0) 79 (-13) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory 45 (0) 0 686.91 (+88.24) 180 (-64) 1061 (-13) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory_labels 45 (0) 0 16116.47 (+1766.80) 13112 (+4410) 21753 (+1788) 0.03 (+0.00) 0.00 (+0.00)
GET list_advisory_paginated 45 (0) 0 500.64 (+76.36) 113 (-87) 783 (+85) 0.03 (+0.00) 0.00 (+0.00)
GET list_importer 46 (+1) 0 13.46 (+4.46) 1 (0) 68 (+12) 0.03 (+0.00) 0.00 (+0.00)
GET list_organizations 45 (0) 0 298.29 (+25.16) 72 (-21) 487 (+94) 0.03 (+0.00) 0.00 (+0.00)
GET list_packages 46 (0) 0 527.15 (+70.59) 139 (+3) 1162 (+181) 0.03 (+0.00) 0.00 (+0.00)
GET list_packages_paginated 46 (0) 0 439.39 (+35.59) 132 (+7) 686 (-221) 0.03 (+0.00) 0.00 (+0.00)
GET list_products 50 (0) 0 11.86 (-5.42) 5 (0) 33 (-35) 0.03 (+0.00) 0.00 (+0.00)
GET list_sboms 50 (0) 0 135212.31 (-6866.98) 108511 (+4560) 161334 (-29031) 0.03 (+0.00) 0.00 (+0.00)
GET list_sboms_paginated 45 (0) 0 1024.89 (+200.60) 901 (+583) 1218 (-54) 0.03 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities 46 (+1) 0 621.20 (+94.71) 169 (+48) 920 (+114) 0.03 (+0.00) 0.00 (+0.00)
GET list_vulnerabilities_paginated 46 (+1) 0 441.96 (+72.49) 103 (-16) 799 (+178) 0.03 (+0.00) 0.00 (+0.00)
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 45 (0) 0 174.47 (+5.38) 38 (-8) 589 (+199) 0.03 (+0.00) 0.00 (+0.00)
GET search_advisory 45 (0) 0 1806.58 (+267.64) 214 (-27) 5010 (-674) 0.03 (+0.00) 0.00 (+0.00)
GET search_exact_purl 50 (0) 0 109.56 (-14.24) 87 (+28) 132 (-67) 0.03 (+0.00) 0.00 (+0.00)
GET search_licenses 165 (+26) 0 18.79 (-2.88) 4 (0) 87 (-32) 0.09 (+0.01) 0.00 (+0.00)
GET search_purls 50 (0) 0 16470.88 (-2023.52) 13712 (+2095) 24087 (-1402) 0.03 (+0.00) 0.00 (+0.00)
GET search_purls_by_license 166 (+26) 0 10850.06 (-1975.79) 4560 (+462) 42656 (+660) 0.09 (+0.01) 0.00 (+0.00)
GET search_sboms_by_license 165 (+26) 0 19.72 (-6.74) 2 (-1) 191 (+13) 0.09 (+0.01) 0.00 (+0.00)
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 45 (0) 0 1305.27 (+78.78) 289 (-156) 2282 (+486) 0.03 (+0.00) 0.00 (+0.00)
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 45 (0) 0 6.40 (-0.07) 1 (0) 59 (+7) 0.03 (+0.00) 0.00 (+0.00)
Aggregated 1691 (+81) 0 6483.69 (-488.61) 1 (0) 161334 (-29031) 0.94 (+0.04) 0.00 (+0.00)

Response Time Metrics

Method Name 50%ile (ms) 60%ile (ms) 70%ile (ms) 80%ile (ms) 90%ile (ms) 95%ile (ms) 99%ile (ms) 100%ile (ms)
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 240 (+50) 270 (+60) 280 (+70) 280 (+50) 290 (-10) 310 (0) 369 (-6) 369 (-6)
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 190 (+10) 200 (+20) 210 (+10) 230 (+20) 290 (+20) 290 (0) 309 (+13) 309 (+13)
GET get_advisory_by_doc_id 10 (-5) 13 (-8) 18 (-11) 25 (-7) 59 (0) 62 (-12) 100 (+18) 100 (+18)
GET get_analysis_latest_cpe 43 (-23) 46 (-24) 57 (-28) 65 (-27) 85 (-25) 96 (-24) 106 (-64) 106 (-64)
GET get_analysis_status 5 (0) 5 (-1) 6 (-6) 7 (-9) 12 (-21) 16 (-51) 49 (-33) 49 (-33)
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 220 (+30) 250 (+50) 300 (+10) 320 (-10) 370 (0) 390 (+10) 400 (-5) 400 (-5)
GET get_sbom[sha256:a3442b37…3040057f79c70669] 13,000 (+1,000) 14,000 (+2,000) 14,000 (0) 15,000 (+1,000) 15,000 (0) 15,894 (+894) 15,894 (-3,106) 15,894 (-3,106)
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 8 (-2) 9 (-2) 11 (-10) 18 (-15) 51 (-14) 67 (-15) 79 (-13) 79 (-13)
GET list_advisory 700 (+100) 700 (+100) 800 (+100) 800 (0) 900 (+100) 900 (0) 1,000 (0) 1,000 (0)
GET list_advisory_labels 16,000 (+2,000) 16,000 (+1,000) 17,000 (+2,000) 18,000 (+2,000) 20,000 (+1,000) 21,000 (+2,000) 21,753 (+1,788) 21,753 (+1,788)
GET list_advisory_paginated 500 (+90) 600 (+170) 600 (+120) 600 (+100) 600 (0) 700 (+100) 783 (+85) 783 (+85)
GET list_importer 6 (+1) 8 (+3) 10 (+1) 16 (+3) 38 (+22) 56 (+33) 68 (+12) 68 (+12)
GET list_organizations 310 (+20) 320 (+30) 360 (+50) 380 (+30) 400 (+30) 460 (+80) 487 (+97) 487 (+97)
GET list_packages 500 (+30) 600 (+110) 600 (+100) 600 (0) 700 (+100) 800 (0) 1,000 (+19) 1,000 (+19)
GET list_packages_paginated 500 (+100) 500 (+90) 600 (+180) 600 (+100) 600 (0) 600 (0) 686 (-214) 686 (-214)
GET list_products 10 (-1) 11 (-2) 13 (-1) 15 (-12) 18 (-23) 26 (-21) 33 (-35) 33 (-35)
GET list_sboms 133,000 (-9,000) 137,000 (-7,000) 144,000 (-4,000) 146,000 (-7,000) 161,000 (-23,000) 161,000 (-25,000) 161,000 (-29,000) 161,000 (-29,000)
GET list_sboms_paginated 1,000 (+100) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0) 1,000 (0)
GET list_vulnerabilities 600 (+100) 700 (+100) 700 (+100) 700 (0) 800 (+100) 900 (+100) 900 (+100) 900 (+100)
GET list_vulnerabilities_paginated 470 (+80) 490 (+90) 500 (+90) 500 (+40) 600 (+110) 700 (+100) 799 (+199) 799 (+199)
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 150 (+30) 170 (0) 200 (0) 220 (0) 290 (-10) 300 (-20) 589 (+199) 589 (+199)
GET search_advisory 600 (-100) 2,000 (+1,100) 3,000 (+2,000) 3,000 (0) 4,000 (0) 5,000 (+1,000) 5,000 (-684) 5,000 (-684)
GET search_exact_purl 110 (-10) 110 (-20) 120 (-10) 120 (-10) 130 (-20) 130 (-30) 130 (-69) 130 (-69)
GET search_licenses 9 (-2) 10 (-3) 16 (-1) 33 (-1) 52 (-7) 62 (-8) 72 (-9) 87 (-32)
GET search_purls 16,000 (-1,000) 17,000 (-1,000) 17,000 (-2,000) 17,000 (-4,000) 19,000 (-4,000) 20,000 (-5,000) 24,000 (-1,000) 24,000 (-1,000)
GET search_purls_by_license 9,000 (-2,000) 10,000 (-3,000) 11,000 (-3,000) 13,000 (-3,000) 17,000 (-3,000) 25,000 (-3,000) 36,000 (-2,000) 42,656 (+660)
GET search_sboms_by_license 10 (-4) 12 (-5) 17 (-7) 26 (-13) 50 (-7) 64 (-27) 110 (-68) 190 (+12)
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 1,000 (0) 1,000 (0) 1,000 (-796) 1,000 (-796) 2,000 (+204) 2,000 (+204) 2,000 (+204) 2,000 (+204)
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 2 (0) 3 (0) 3 (0) 4 (-2) 12 (-2) 41 (+1) 59 (+7) 59 (+7)
Aggregated 220 (+10) 480 (+90) 700 (+100) 5,000 (+1,000) 14,000 (-1,000) 17,000 (-3,000) 137,000 (-11,000) 161,000 (-29,000)

Status Code Metrics

Method Name Status Codes
GET download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 45 [200]
GET get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 45 [200]
GET get_advisory_by_doc_id 45 [200]
GET get_analysis_latest_cpe 45 [200]
GET get_analysis_status 45 [200]
GET get_purl_details[0000054a-a69b-5…520-80752db183e6] 45 [200]
GET get_sbom[sha256:a3442b37…3040057f79c70669] 45 [200]
GET get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 45 [200]
GET list_advisory 45 [200]
GET list_advisory_labels 45 [200]
GET list_advisory_paginated 45 [200]
GET list_importer 46 [200]
GET list_organizations 45 [200]
GET list_packages 46 [200]
GET list_packages_paginated 46 [200]
GET list_products 50 [200]
GET list_sboms 50 [200]
GET list_sboms_paginated 45 [200]
GET list_vulnerabilities 46 [200]
GET list_vulnerabilities_paginated 46 [200]
GET sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 45 [200]
GET search_advisory 45 [200]
GET search_exact_purl 50 [200]
GET search_licenses 165 [200]
GET search_purls 50 [200]
GET search_purls_by_license 166 [200]
GET search_sboms_by_license 165 [200]
POST get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 45 [200]
POST post_vulnerability_analyze[pkg:rpm/redhat/squid] 45 [200]
Aggregated 1,691 [200]

Transaction Metrics

Transaction # Times Run # Fails Average (ms) Min (ms) Max (ms) RPS Failures/s
WebsiteUser
0.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.1 website_index 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.2 website_openapi 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.3 website_sboms 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.4 website_packages 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.5 website_advisories 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
0.6 website_importers 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser
1.0 logon 45 (0) 0 (0) 13.93 (+1.96) 7 (0) 31 (+9) 0.03 (+0.00) 0.00 (+0.00)
1.1 list_organizations 45 (0) 0 (0) 298.60 (+25.29) 72 (-21) 487 (+94) 0.03 (+0.00) 0.00 (+0.00)
1.2 list_advisory 45 (0) 0 (0) 686.93 (+88.24) 180 (-64) 1061 (-13) 0.03 (+0.00) 0.00 (+0.00)
1.3 list_advisory_paginated 45 (0) 0 (0) 500.69 (+76.31) 113 (-87) 783 (+85) 0.03 (+0.00) 0.00 (+0.00)
1.4 get_advisory_by_doc_id 45 (0) 0 (0) 19.22 (-4.62) 5 (+1) 100 (+18) 0.03 (+0.00) 0.00 (+0.00)
1.5 search_advisory 45 (0) 0 (0) 1806.69 (+267.69) 214 (-27) 5010 (-674) 0.03 (+0.00) 0.00 (+0.00)
1.6 list_vulnerabilities 46 (+1) 0 (0) 621.20 (+94.62) 169 (+48) 920 (+114) 0.03 (+0.00) 0.00 (+0.00)
1.7 list_vulnerabilities_paginated 46 (+1) 0 (0) 442.04 (+72.47) 103 (-16) 799 (+178) 0.03 (+0.00) 0.00 (+0.00)
1.8 list_importer 46 (+1) 0 (0) 13.46 (+4.37) 1 (0) 68 (+11) 0.03 (+0.00) 0.00 (+0.00)
1.9 list_packages 46 (0) 0 (0) 527.22 (+70.61) 139 (+3) 1162 (+181) 0.03 (+0.00) 0.00 (+0.00)
1.10 list_packages_paginated 46 (0) 0 (0) 439.50 (+35.63) 132 (+7) 686 (-221) 0.03 (+0.00) 0.00 (+0.00)
1.11 search_purls 50 (0) 0 (0) 16470.90 (-2023.54) 13712 (+2095) 24087 (-1402) 0.03 (+0.00) 0.00 (+0.00)
1.12 search_exact_purl 50 (0) 0 (0) 109.58 (-14.30) 87 (+28) 132 (-67) 0.03 (+0.00) 0.00 (+0.00)
1.13 list_products 50 (0) 0 (0) 11.92 (-5.42) 5 (0) 33 (-35) 0.03 (+0.00) 0.00 (+0.00)
1.14 list_sboms 50 (0) 0 (0) 135212.42 (-6866.92) 108512 (+4561) 161334 (-29031) 0.03 (+0.00) 0.00 (+0.00)
1.15 list_sboms_paginated 45 (0) 0 (0) 1024.96 (+200.60) 901 (+583) 1218 (-54) 0.03 (+0.00) 0.00 (+0.00)
1.16 get_analysis_status 45 (0) 0 (0) 6.89 (-6.27) 1 (-1) 49 (-33) 0.03 (+0.00) 0.00 (+0.00)
1.17 get_analysis_latest_cpe 45 (0) 0 (0) 42.33 (-15.87) 4 (0) 106 (-67) 0.03 (+0.00) 0.00 (+0.00)
1.18 list_advisory_labels 45 (0) 0 (0) 16116.56 (+1766.82) 13112 (+4410) 21753 (+1788) 0.03 (+0.00) 0.00 (+0.00)
1.19 get_sbom[sha256:a3442b37…3040057f79c70669] 45 (0) 0 (0) 10056.38 (+1111.24) 496 (+168) 15894 (-3217) 0.03 (+0.00) 0.00 (+0.00)
1.20 sbom_by_package[pkg:oci/web-ter…-bundle&tag=1.11] 45 (0) 0 (0) 174.58 (+5.42) 38 (-8) 589 (+199) 0.03 (+0.00) 0.00 (+0.00)
1.21 get_sbom_license_ids[urn:uuid:019c4a…8ba-3cc0260ef778] 45 (0) 0 (0) 17.18 (-4.31) 3 (0) 79 (-13) 0.03 (+0.00) 0.00 (+0.00)
1.22 post_vulnerability_analyze[pkg:rpm/redhat/squid] 45 (0) 0 (0) 6.47 (-0.04) 1 (0) 59 (+6) 0.03 (+0.00) 0.00 (+0.00)
1.23 get_purl_details[0000054a-a69b-5…520-80752db183e6] 45 (0) 0 (0) 237.60 (+17.58) 63 (+30) 402 (-3) 0.03 (+0.00) 0.00 (+0.00)
1.24 get_recommendations[pkg:maven/io.ne…8.1.redhat-00033] 45 (0) 0 (0) 1305.38 (+78.73) 289 (-156) 2282 (+486) 0.03 (+0.00) 0.00 (+0.00)
1.25 download_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 45 (0) 0 (0) 227.09 (+42.87) 35 (0) 369 (-6) 0.03 (+0.00) 0.00 (+0.00)
1.26 get_advisory[5b25cdef-428a-4…29e-fbb3415c22ab] 45 (0) 0 (0) 190.22 (+21.29) 25 (-41) 309 (+13) 0.03 (+0.00) 0.00 (+0.00)
RestAPIUserSlow
2.0 logon 165 (+26) 0 (0) 9.91 (-0.29) 6 (0) 16 (-2) 0.09 (+0.01) 0.00 (+0.00)
2.1 search_licenses 165 (+26) 0 (0) 19.01 (-2.82) 4 (0) 87 (-32) 0.09 (+0.01) 0.00 (+0.00)
2.2 search_sboms_by_license 165 (+26) 0 (0) 19.77 (-6.74) 2 (-1) 191 (+13) 0.09 (+0.01) 0.00 (+0.00)
2.3 search_purls_by_license 166 (+26) 0 (0) 10850.10 (-1975.79) 4560 (+462) 42656 (+660) 0.09 (+0.01) 0.00 (+0.00)
RestAPIUserDelete
3.0 logon 510 (-3) 0 (0) 10.30 (-0.32) 6 (0) 26 (+2) 0.28 (-0.00) 0.00 (+0.00)
RestAdvisoryLableUser
4.0 logon 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 2,411 (+104) 0 (0) 4547.46 (-318.34) 1 (0) 161334 (-29031) 1.34 (+0.06) 0.00 (+0.00)

Scenario Metrics

Scenario # Users # Times Run Average (ms) Min (ms) Max (ms) Scenarios/s Iterations
WebsiteUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
RestAPIUser 5 (0) 45 (0) 188762.52 (-6352.48) 162946 (+22680) 223100 (-29200) 0.03 (+0.00) 9.00 (+0.00)
RestAPIUserSlow 1 (0) 165 (+26) 10875.19 (-2030.09) 4581 (+453) 42772 (+645) 0.09 (+0.01) 165.00 (+26.00)
RestAPIUserDelete 1 (0) 510 (-3) 3533.98 (+23.48) 3017 (0) 4017 (-3) 0.28 (-0.00) 510.00 (-3.00)
RestAdvisoryLableUser 0 (0) 0 (0) 0.00 (+0.00) 0 (0) 0 (0) 0.00 (+0.00) 0.00 (+0.00)
Aggregated 7 (0) 720 (+23) 16793.13 (-961.39) 3017 (0) 223100 (-29200) 0.40 (+0.01) 684.00 (+23.00)

User Metrics